← Back

CVE-2025-32885

nvd nist
Published: May 1, 2025Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign via a software defined radio. This can be exploited if the device is being used in an unencrypted environment or if the cryptography has already been compromised.

Affected (2)

2 products
Mesh Firmware
Gotenna
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 0.25.5
Running on/withPlatform Versions
Gotenna
Mesh
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 5.5.3

References (2)

Source: cve@mitre.org
Product

Timeline

No history available yet.